CAPEC-415: Pretexting via Phone
Detailed
Draft
严重程度: Low
CAPEC版本: 3.9
更新日期: 2023-01-24
攻击模式描述
An adversary engages in pretexting behavior, assuming some sort of trusted role, and contacting the targeted individual or organization via phone to solicit information from target persons, or manipulate the target into performing an action that serves the adversary's interests. This is the most common social engineering attack. Some of the most commonly effective approaches are to impersonate a fellow employee, impersonate a computer technician or to target help desk personnel.